cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1433
Views
0
Helpful
1
Replies

Can the IPS SSP be sent traffic, so it only acts as an IDS, not as an IPS?

golly_wog
Level 1
Level 1

Hi

I might be getting the wrong end of the stick, I'm looking at Cisco's IPS portfolio and like the sound of the IPS SSP in a 5585-X. I would like the IPS SSM to act passively and just monitor for illegal traffic. Traffic would not be passed through the 5585-X, only to it.

I would want the IPS SSP to be sent a copy of the traffic and then monitor this.

Would this be possible using the IPS SSP?

Many thanks

1 Accepted Solution

Accepted Solutions

Robert Albach
Cisco Employee
Cisco Employee

The IDS/IPS module will only receive traffic only after it passes through the ASA. The security policy on the IPS module can be set for non-blocking actions if you wish.

-Robert

View solution in original post

1 Reply 1

Robert Albach
Cisco Employee
Cisco Employee

The IDS/IPS module will only receive traffic only after it passes through the ASA. The security policy on the IPS module can be set for non-blocking actions if you wish.

-Robert

Review Cisco Networking products for a $25 gift card